Menu

  • Alerts
  • Incidents
  • News
  • APTs
  • Cyber Decoded
  • Cyber Hygiene
  • Cyber Review
  • Cyber Tips
  • Definitions
  • Malware
  • Threat Actors
  • Tutorials

Useful Tools

  • Password generator
  • Report an incident
  • Report to authorities
No Result
View All Result
CTF Hack Havoc
CyberMaterial
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
    • Report an incident
  • About
    • About Us
    • Advertise with us
Get Help
Hall of Hacks
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
    • Report an incident
  • About
    • About Us
    • Advertise with us
Get Help
No Result
View All Result
Hall of Hacks
CyberMaterial
No Result
View All Result
Home Incidents

Vulnerability Fix Time Increases by 47%

February 28, 2025
Reading Time: 2 mins read
in Incidents
LockBit Targets New FBI Director Kash Patel

Veracode’s latest State of Software Security (SoSS) report reveals concerning trends in software security vulnerabilities. The average time to fix these vulnerabilities has significantly increased, rising to eight and a half months, which marks a 47% rise over the past five years. This is a drastic change compared to 15 years ago, where the fix time was 327% lower. The report attributes much of this delay to the growing dependence on third-party code and the rise of AI-generated code, which have made software ecosystems more complex and difficult to secure.

A significant portion of the security challenges organizations face is the accumulation of critical security debt.

The report indicates that 50% of all organizations have vulnerabilities that have been left unresolved for over a year, with critical vulnerabilities accounting for 70% of this debt. These critical flaws often come from third-party code, highlighting the risk associated with software supply chains. Despite efforts to improve security, the prevalence of security debt remains high, with 74.2% of organizations facing some form of security debt, ranging from high-severity flaws to more minor issues.

The analysis also highlights stark differences in how various organizations manage security flaws.

The top 25% of organizations are able to fix more than 10% of their software flaws every month, whereas the bottom 25% address less than 1%. The report also points out that the most mature organizations have security debt in only 17% of their applications, while the least mature organizations carry this burden in over 67% of their applications. This disparity shows the varying levels of maturity in handling vulnerabilities across the industry.

Despite these alarming figures, there are some positive trends. The number of applications free from flaws listed in the OWASP Top 10 vulnerabilities has increased by 63% over the past five years. Furthermore, the prevalence of high-severity flaws has been halved since 2016, demonstrating gradual improvements in security practices. However, with over half of applications still containing critical vulnerabilities, there is clearly much work to be done to address the growing security challenges in today’s software environments.

Reference:

  • Average Fix Time for Software Vulnerabilities Increases by 47% in 5 Years
Tags: cyber incidentsCyber Incidents 2025Cyber threatsFebruary 2025
ADVERTISEMENT

Related Posts

Spanish Consumer Group Faces Cyberattack

LockBit Ransomware Data Leaked After Hack

May 9, 2025
Spanish Consumer Group Faces Cyberattack

Education Giant Pearson Hit by Data Breach

May 9, 2025
Spanish Consumer Group Faces Cyberattack

Spanish Consumer Group Faces Cyberattack

May 9, 2025
Masimo Cyberattack Disrupts Manufacturing

Masimo Cyberattack Disrupts Manufacturing

May 8, 2025
Masimo Cyberattack Disrupts Manufacturing

West Lothian Schools Hit by Ransomware

May 8, 2025
Masimo Cyberattack Disrupts Manufacturing

Cyberattack Targets Tepotzotlán Facebook

May 8, 2025

Latest Alerts

X Scam Targets Crypto Users with Fake Ads

FBI Warns Cybercriminals Exploit Routers

FreeDrain Phishing Steals Crypto Funds

CoGUI Targets Consumer and Finance Brands

COLDRIVER Hackers Target Sensitive Data

Cisco Fixes Flaw in IOS Wireless Controller

Subscribe to our newsletter

    Latest Incidents

    LockBit Ransomware Data Leaked After Hack

    Spanish Consumer Group Faces Cyberattack

    Education Giant Pearson Hit by Data Breach

    Masimo Cyberattack Disrupts Manufacturing

    Cyberattack Targets Tepotzotlán Facebook

    West Lothian Schools Hit by Ransomware

    CyberMaterial Logo
    • About Us
    • Contact Us
    • Jobs
    • Legal and Privacy Policy
    • Site Map

    © 2025 | CyberMaterial | All rights reserved

    Welcome Back!

    Login to your account below

    Forgotten Password?

    Retrieve your password

    Please enter your username or email address to reset your password.

    Log In

    Add New Playlist

    No Result
    View All Result
    • Alerts
    • Incidents
    • News
    • Cyber Decoded
    • Cyber Hygiene
    • Cyber Review
    • Definitions
    • Malware
    • Cyber Tips
    • Tutorials
    • Advanced Persistent Threats
    • Threat Actors
    • Report an incident
    • Password Generator
    • About Us
    • Contact Us
    • Advertise with us

    Copyright © 2025 CyberMaterial